Presentation is loading. Please wait.

Presentation is loading. Please wait.

SIM401. A. Datum Account Forest Trey Research Resource Forest Federation Trust Microsoft (Users) E-Company Store (Resource) Contoso(Users)Contoso(Users)Fabrikam(Resource)Fabrikam(Resource)

Similar presentations


Presentation on theme: "SIM401. A. Datum Account Forest Trey Research Resource Forest Federation Trust Microsoft (Users) E-Company Store (Resource) Contoso(Users)Contoso(Users)Fabrikam(Resource)Fabrikam(Resource)"— Presentation transcript:

1 SIM401

2

3

4 A. Datum Account Forest Trey Research Resource Forest Federation Trust Microsoft (Users) E-Company Store (Resource) Contoso(Users)Contoso(Users)Fabrikam(Resource)Fabrikam(Resource)

5

6 Site1 Site2 MSIT.adfs.microsoft.com Extranet Corpnet Extranet Corpnet MSIT.adfs.microsoft.com

7 Site1 Site2 MSIT.adfs.microsoft.com Extranet Corpnet Extranet Corpnet MSIT.adfs.microsoft.com Federation Service (FS) Security Token Service (STS) Maps user attributes to claims Issues security tokens Manages federation trust policies, claim rules

8 Site1 Site2 MSIT.adfs.microsoft.com Extranet Corpnet Extranet Corpnet MSIT.adfs.microsoft.com Client proxy for token requests Provides UI for browser clients Forms based auth Home realm discovery Federation Service Proxy (FS-P)

9

10 Internet DMZ Intranet Geographic DNS Load Balanced

11 Internet DMZ Intranet

12 Site1 Site2 MSIT.adfs.microsoft.com Extranet Corpnet Extranet Corpnet MSIT.adfs.microsoft.com SQL server ADFS service configuration Trust and claims rule storage SAML artifact storage SQL Configuration Store

13

14 <policyStore connectionString="Data Source=SQL1.contoso.com; Initial Catalog=AdfsConfiguration; Integrated Security=True; Failover Partner= “SQL2.contoso.com" administrationUrl="net.tcp://localhost:1500/policy" />

15 PS C:\Windows\system32> get-ADFSProperties | %{$_.ArtifactDbConnection} Data Source=SQL1.contoso.com;Initial Catalog=AdfsArtifactStore;Integrated Security=True;Failover Partner=SQL2.contoso.com

16 A. Datum Account Forest Trey Research Resource Forest Federation Trust Microsoft (Users) E-Company Store (Resource) Contoso(Users)Contoso(Users)Fabrikam(Resource)Fabrikam(Resource)

17 A. Datum Account Forest Trey Research Resource Forest Contoso(Users)Contoso(Users)Fabrikam(Resource)Fabrikam(Resource) Accept Incoming Claims Authorize the Requestor Issue Outgoing Claims Accept Incoming Claims Authorize the Requestor Issue Outgoing Claims

18

19

20

21

22

23

24

25

26

27

28

29

30

31

32

33

34 www.microsoft.com/teched Sessions On-Demand & CommunityMicrosoft Certification & Training Resources Resources for IT ProfessionalsResources for Developers www.microsoft.com/learning http://microsoft.com/technet http://microsoft.com/msdn http://northamerica.msteched.com Connect. Share. Discuss.

35

36 Scan the Tag to evaluate this session now on myTechEd Mobile

37

38


Download ppt "SIM401. A. Datum Account Forest Trey Research Resource Forest Federation Trust Microsoft (Users) E-Company Store (Resource) Contoso(Users)Contoso(Users)Fabrikam(Resource)Fabrikam(Resource)"

Similar presentations


Ads by Google